2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-27856 | HIGH | 7.8 | 0.6% | Jan 15, 2025 | The issue was addressed with improved checks. This issue is fixed in Safari 17.5, iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5... |
| CVE-2024-52005 | HIGH | 8.8 | 0.5% | Jan 15, 2025 | Git is a source code management tool. When cloning from a server (or fetching, or pushing), informational or error messa... |
| CVE-2024-7085 | HIGH | 8.2 | 0.4% | Jan 15, 2025 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in OpenText™ S... |
| CVE-2024-57025 | MEDIUM | 6.8 | 1.3% | Jan 15, 2025 | TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "desc" p... |
| CVE-2024-57024 | MEDIUM | 6.8 | 1.5% | Jan 15, 2025 | TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "eMinute... |
| CVE-2024-57023 | MEDIUM | 6.8 | 1.3% | Jan 15, 2025 | TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "week" p... |
| CVE-2024-57022 | HIGH | 8.8 | 1.6% | Jan 15, 2025 | TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "sHour" ... |
| CVE-2024-57021 | HIGH | 8.8 | 1.6% | Jan 15, 2025 | TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "eHour" ... |
| CVE-2024-57020 | HIGH | 8.8 | 1.6% | Jan 15, 2025 | TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "sMinute... |
| CVE-2024-57019 | HIGH | 8.8 | 1.6% | Jan 15, 2025 | TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "limit" ... |
| CVE-2024-57018 | HIGH | 8.8 | 1.6% | Jan 15, 2025 | TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "desc" p... |
| CVE-2024-57017 | HIGH | 8.8 | 1.6% | Jan 15, 2025 | TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "pass" p... |
| CVE-2024-57016 | HIGH | 8.8 | 1.6% | Jan 15, 2025 | TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "user" p... |
| CVE-2024-57015 | HIGH | 8.8 | 1.6% | Jan 15, 2025 | TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "hour" p... |
| CVE-2024-57014 | HIGH | 8.8 | 1.2% | Jan 15, 2025 | TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "recHour... |
| CVE-2024-57013 | HIGH | 8.8 | 1.6% | Jan 15, 2025 | TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "switch"... |
| CVE-2024-57012 | HIGH | 8.8 | 1.6% | Jan 15, 2025 | TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "week" p... |
| CVE-2024-57011 | HIGH | 8.8 | 1.7% | Jan 15, 2025 | TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "minute"... |
| CVE-2024-52783 | MEDIUM | 5.1 | 0.2% | Jan 15, 2025 | Insecure permissions in the XNetSocketClient component of XINJE XDPPro.exe v3.2.2 to v3.7.17c allows attackers to execut... |
| CVE-2024-50954 | HIGH | 7.5 | 0.4% | Jan 15, 2025 | The XINJE XL5E-16T and XD5E-24R-E programmable logic controllers V3.5.3b-V3.7.2a have a vulnerability in handling Modbus... |
| CVE-2024-50953 | HIGH | 7.5 | 0.4% | Jan 15, 2025 | An issue in XINJE XL5E-16T V3.7.2a allows attackers to cause a Denial of Service (DoS) via a crafted Modbus message. |
| CVE-2024-8603 | HIGH | 8.2 | 0.3% | Jan 15, 2025 | A “Use of a Broken or Risky Cryptographic Algorithm” vulnerability in the SSL/TLS component used in B&R Automation Runti... |
| CVE-2024-56295 | MEDIUM | 6.5 | 0.4% | Jan 15, 2025 | Missing Authorization vulnerability in Ays Pro Poll Maker poll-maker allows Exploiting Incorrectly Configured Access Con... |
| CVE-2024-47140 | MEDIUM | 5.4 | 0.7% | Jan 15, 2025 | A cross-site scripting (xss) vulnerability exists in the add_alert_check page of Observium CE 24.4.13528. A specially cr... |
| CVE-2024-47002 | MEDIUM | 5.4 | 14.4% | Jan 15, 2025 | A html code injection vulnerability exists in the vlan management part of Observium CE 24.4.13528. A specially crafted H... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now